
hdcp-genkey
Generate HDCP source and sink keys from the leaked master key

Generate HDCP source and sink keys from the leaked master key

Decrypt encrypted Fortienet FortiOS firmware images

IDA plugin to enhance (U)EFI binary reversing with batch analysis, GUID database, and service usage statistics for firmware security research.

Go Trusted Execution Environment (TEE)

Interface for interacting with PlayStation 5 EMC and EFC

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

Firmware for converting consumer LoRa radios into KISS TNC modems with serial CLI, BLE packet sniffing, and APRS/AX.25 compatibility for packet radio…

Concierge Toolkit: Physical Access Control Identification and Exploitation

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

Specter — passive 13.56 MHz NFC reader/skimmer bug-sweep for Flipper Zero. Counter-surveillance EMF meter using the onboard NFC chip. No extra…

Python-based exploit development framework with payloads, encoders, and connect-back servers, focused on MIPS CPU architecture but designed for…

Repository that tracks public exploits, vulnerabilities and advisories that I [co-]discovered or [co-]authored.

Let's control Secure Boot Chain ourselves.

Telenet Enable for Netgear routers from svn checkout http://netgear-telnetenable.googlecode.com/svn/trunk/ netgear-telnetenable-read-only

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.

nOBEX allows emulating the PBAP, MAP, and HFP profiles to test vehicle infotainment systems and similar devices using these profiles

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera